[Git][security-tracker-team/security-tracker][master] flask-appbuilder now in the archive
Moritz Muehlenhoff (@jmm)
jmm at debian.org
Sat Jul 23 21:50:00 BST 2022
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
6c8a45c9 by Moritz Muehlenhoff at 2022-07-23T22:49:34+02:00
flask-appbuilder now in the archive
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -32307,7 +32307,7 @@ CVE-2022-24778 (The imgcrypt library provides API exensions for containerd to su
CVE-2022-24777 (grpc-swift is the Swift language implementation of gRPC, a remote proc ...)
NOT-FOR-US: grpc-swift
CVE-2022-24776 (Flask-AppBuilder is an application development framework, built on top ...)
- - flask-appbuilder <itp> (bug #998029)
+ - flask-appbuilder <not-affected> (Fixed before initial upload to archive)
CVE-2022-24775 (guzzlehttp/psr7 is a PSR-7 HTTP message library. Versions prior to 1.8 ...)
- php-guzzlehttp-psr7 1.8.5-1 (bug #1008236)
[bullseye] - php-guzzlehttp-psr7 1.7.0-1+deb11u1
@@ -49177,7 +49177,7 @@ CVE-2022-21661 (WordPress is a free and open-source content management system wr
CVE-2022-21660 (Gin-vue-admin is a backstage management system based on vue and gin. I ...)
NOT-FOR-US: Gin-vue-admin
CVE-2022-21659 (Flask-AppBuilder is an application development framework, built on top ...)
- - flask-appbuilder <itp> (bug #998029)
+ - flask-appbuilder <not-affected> (Fixed before initial upload to archive)
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/security/advisories/GHSA-wfjw-w6pv-8p7f
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/pull/1775
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/commit/e2b744c258ff62ece9d5ac7172c3b4644ff4c2fe (3.4.4)
@@ -59372,7 +59372,7 @@ CVE-2021-41267 (Symfony/Http-Kernel is the HTTP kernel component for Symfony, a
CVE-2021-41266 (Minio console is a graphical user interface for the for MinIO operator ...)
NOT-FOR-US: Minio console
CVE-2021-41265 (Flask-AppBuilder is a development framework built on top of Flask. Ver ...)
- - flask-appbuilder <itp> (bug #998029)
+ - flask-appbuilder <not-affected> (Fixed before initial upload to archive)
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/security/advisories/GHSA-m3rf-7m4w-r66q
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/releases/tag/v3.3.4
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/commit/eba517aab121afa3f3f2edb011ec6bc4efd61fbc (3.3.4)
@@ -80415,7 +80415,7 @@ CVE-2021-32807 (The module `AccessControl` defines security policies for Python
CVE-2021-32806 (Products.isurlinportal is a replacement for isURLInPortal method in Pl ...)
NOT-FOR-US: Plone
CVE-2021-32805 (Flask-AppBuilder is an application development framework, built on top ...)
- - flask-appbuilder <itp> (bug #998029)
+ - flask-appbuilder <not-affected> (Fixed before initial upload to archive)
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/security/advisories/GHSA-624f-cqvr-3qw4
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/commit/6af28521589599b1dbafd6313256229ee9a4fa74 (v3.3.2)
CVE-2021-32804 (The npm package "tar" (aka node-tar) before versions 6.1.1, 5.0.6, 4.4 ...)
@@ -89104,7 +89104,7 @@ CVE-2021-29622 (Prometheus is an open-source monitoring system and time series d
NOTE: The vulnerability itself is introduced with 2.23.0 upstream.
NOTE: See https://bugs.debian.org/988804 for details.
CVE-2021-29621 (Flask-AppBuilder is a development framework, built on top of Flask. Us ...)
- - flask-appbuilder <itp> (bug #998029)
+ - flask-appbuilder <not-affected> (Fixed before initial upload to archive)
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/security/advisories/GHSA-434h-p4gx-jm89
NOTE: https://github.com/dpgaspar/Flask-AppBuilder/commit/780bd0e8fbf2d36ada52edb769477e0a4edae580 (v3.3.0)
CVE-2021-29620 (Report portal is an open source reporting and analysis framework. Star ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6c8a45c9aaa83c99bce2754e243bb4640044f9ec
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6c8a45c9aaa83c99bce2754e243bb4640044f9ec
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220723/fcfaadc0/attachment.htm>
More information about the debian-security-tracker-commits
mailing list